openSUSE Tumbleweed and MicroOS are now delivering an image that is
using systemd-boot
as boot loader and full disk encryption based
also on systemd
. The unlock of the encrypted device can be done via
the traditional password, a TPM2
(a crypto-device that is already
present in your system) that will attach the device if the system is
in good health, or a FIDO2
key that will validate the ownership of a
token.
This is a companion discussion topic for the original entry at https://news.opensuse.org/2023/12/20/systemd-fde/